Security Advisory

CVE-2017-13182

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-01-12 23:00:00
Last updated 2024-09-16 19:52:15
Assigner google_android
CVSS score not scored
State PUBLISHED

Description

In the sendFormatChange function of ACodec, there is a possible integer overflow which could lead to an out-of-bounds write. This could lead to a local elevation of privilege enabling code execution as a privileged process with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 8.0, 8.1. Android ID: A-67737022.